Employee Privacy Statement

Effective: 2 May 2026

This statement explains how Rank Haus Pty Ltd (“Rank Haus”, “we”, “us”, “our”) collects, uses, stores, and discloses personal information about our employees, contractors, and prospective hires.

1. What we collect

We collect personal information that is reasonably necessary for, or directly related to, your employment with us. This includes:

  • contact details (name, address, email, phone, emergency contact)
  • date of birth and proof of identity
  • right-to-work and visa status
  • bank account details (for payroll)
  • superannuation fund and member details
  • tax file number and tax declarations
  • payroll, leave, and timesheet records
  • performance, conduct, and disciplinary records
  • training and qualifications
  • health information directly relevant to employment (e.g. medical certificates, workplace injuries)
  • records of access to and activity within business-owned accounts and devices

2. How we collect it

We collect your information directly from you, through the onboarding form you complete when you join, documents you provide (TFN declaration, super choice form, identification), and communications during your employment. We may also collect information from third parties where reasonably required (such as references or regulatory bodies).

3. Why we collect it

We use your personal information to pay you and meet our payroll, super, and tax obligations; administer leave, time tracking, and performance; communicate with you and your emergency contact; meet our work health and safety obligations; manage our business operations; and comply with the law.

4. Who we share it with

We share your personal information only where reasonably necessary, including with our payroll, accounting, and superannuation providers; the Australian Taxation Office and superannuation funds; Services Australia (where required); workers compensation insurer; legal and professional advisers; and regulators or law enforcement where required by law. We do not sell or trade your personal information.

5. How we store it

Personal information is stored in our project management and payroll systems. Sensitive fields (bank BSB and account number) are encrypted at rest using AES-256-GCM. Access is restricted to staff who need it for their role, and admin reveal of sensitive data is audit-logged.

6. Security

We take reasonable steps to protect your information from misuse, loss, unauthorised access, modification, or disclosure. This includes encryption, access controls, two-factor authentication on admin systems, and audit logging.

7. Retention

We retain your personal information for the period required by law (typically 7 years after the end of your employment for payroll and tax records) or for as long as it is reasonably required for legitimate business purposes.

8. Workplace surveillance

You may be required to use business-owned accounts (email, Slack, Asana, Google Workspace, Microsoft 365, and similar). Activity within those accounts may be visible to the business. We may, where reasonable for legitimate business purposes, access content within business-owned accounts at any time, including after your employment ends.

We do not install monitoring software on your personal devices.

9. Your rights

You may request access to, or correction of, your personal information at any time by emailing coralee@rankhaus.au. We will respond within a reasonable period.

If you are concerned about how we handle your information, please contact us first. You may also contact the Office of the Australian Information Commissioner (oaic.gov.au).

10. Updates

We may update this statement from time to time. The current version is always available at rankhaus.au/employee-privacy.

Contact: coralee@rankhaus.au